Blog

  • Is Your Invoice a Deepfake? Securing Your Accounts Payable Process Against Voice and Email Cloning

    Is Your Invoice a Deepfake? Securing Your Accounts Payable Process Against Voice and Email Cloning

    It’s a statistic that sends a shiver down the backs of SME owners, managers and employees.   According to the FBI’s 2025 Internet Crime Report, business email compromise (BEC) cost US businesses more than $3 billion last year. This makes it one of the most financially damaging cybercrimes on record.  AI has made these attacks harder…

  • Adversary-in-the-Middle Attacks: How Phishing Sites Steal Your Active Login

    Adversary-in-the-Middle Attacks: How Phishing Sites Steal Your Active Login

    You click a link, sign in, approve the MFA prompt, and get on with your day. Completely unaware that someone else just logged into your account at the same moment. That scenario surprises many businesses, particularly those that rely on multi-factor authentication (MFA) to protect cloud accounts. But this is exactly how Adversary-in-the-Middle (AiTM) phishing…

  • The “Session Cookie” Hijack: Why MFA Can’t Always Save You

    The “Session Cookie” Hijack: Why MFA Can’t Always Save You

    MFA is a strong front-door lock. But it’s not the only thing that decides whether someone can get in. After you sign in, your browser keeps you logged in using a session token (often stored as a cookie). It’s the digital version of a wristband at an event: once you’ve been checked, the wristband proves…

Archived posts

  • The MFA Level-Up: Why SMS Codes Are No Longer Enough (and What to Use Instead)

    For years, enabling Multi-Factor Authentication (MFA) has been a cornerstone of account and device security. While MFA remains essential, the threat landscape has evolved, making some older methods less effective. The most common form of MFA, four- or six-digit codes sent via SMS, is convenient and familiar, and it’s certainly better than relying on passwords…

  • The Daily Cloud Checkup: A Simple 15-Minute Routine to Prevent Misconfiguration and Data Leaks

    Moving to the cloud offers incredible flexibility and speed, but it also introduces new responsibilities for your team. Cloud security is not a “set it and forget it” type task, small mistakes can quickly become serious vulnerabilities if ignored. You don’t need to dedicate hours each day to this. In most cases, a consistent, brief…

  • The “Deepfake CEO” Scam: Why Voice Cloning Is the New Business Email Compromise (BEC)

    The phone rings, and it’s your boss. The voice is unmistakable; with the same flow and tone you’ve come to expect. They’re asking for a favor: an urgent wire transfer to lock in a new vendor contract, or sensitive client information that’s strictly confidential. Everything about the call feels normal, and your trust kicks in…